HackingStolen CredentialsCapture App DataData ExfiltratedCustomer Data InvolvedEmployee Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTHEALTH_BASICPIIPHIMediumContained
Steel Partners Holdings L.P.
bd_3ca7167cc02cf496 · schema v1 · pii pii-v1
Full breach record for Steel Partners Holdings L.P. →Steel Partners Holdings L.P. disclosed unauthorized access to one employee email account between April 18–29, 2020. The intrusion allowed a local download of the entire mailbox, which contained documents with names, SSNs, dates of birth, and health information (disability/workers' compensation) for employees, beneficiaries, and pension plan participants across numerous Steel Partners portfolio companies and pension plans. Steel Partners engaged a forensic firm, locked the account, required password resets, and implemented MFA improvements.
This filing is one of 5 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (4) · sorted by filing gap
- bd_d278d119b9afcdc0California State AGfiled 2020-07-16(17d gap)Candidate
- bd_6be8759b2eb0d348Montana State AGfiled 2020-06-29(34d gap)Candidate
- bd_88361305fd97eb21South Carolina State AGfiled 2020-06-29(34d gap)Verified
- bd_d8b05cdca0e42362Delaware State AGfiled 2020-06-29(34d gap)Verified
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-192647
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Aug 2, 2020
- Raw hash
- 81730a0edfe74482a5798cd7f8c796578eec43a03dc6aaef68985f3bc7d83de0
Reporting entity
- Name
- Steel Partners Holdings L.P.norm: steel partners
Victim entity
- Name
- Steel Partners Holdings L.P.norm: steel partners
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- Jul 28, 2020
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTHEALTH_BASICPIIPHI
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid AccountsT1114 Email Collection
- Threat actor
- External
- Initial access
- valid_credentials
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.